URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.46/zamok/dendy.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2811050
URL: http://185.215.113.46/zamok/dendy.exe
URL Status:Offline
Host: 185.215.113.46
Date added:2024-04-13 16:25:09 UTC
Last online:2024-04-15 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-04-13 16:26:12 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:2 days, 5 hours, 44 minutes Poor (down since 2024-04-15 22:11:01 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-15n/aexe ad0bde178f7de0357fa4eface46c6b7305c157a888361e68a4a095deabe2df04Virustotal results 55.71% RiseProStealer
2024-04-15n/aexe 536b407875de1a7c73cbc71ea1faae2badf306e93445161945c9f37ce68c6948Virustotal results 55.71% RiseProStealer
2024-04-15n/aexe 38a7034aca87630f83ef74d24bc1b888db58a3beeba37c15f170b7f7954a36deVirustotal results 55.71% 
2024-04-15n/aexe 755feadd1ee78ffc67bddb7e93f4b4d6a38e7f5fce9bdbfc502d2926c4849161Virustotal results 54.29% RiseProStealer
2024-04-15n/aexe ae92db188f69cec41e14be06a782fd8baa3d313e56302b589e9becb3f2432697Virustotal results 57.14% RiseProStealer
2024-04-15n/aexe ba29bb0e4c4602cb6e755079d8a8e0694fec05011f1e1131fd4c64b5e4807dedn/a RiseProStealer
2024-04-15n/aexe 31a3d6a6453500124805d5fa5f1abad25b40cdcfc386425caaa52db6443fbd39Virustotal results 46.38% RiseProStealer
2024-04-14n/aexe a211901dea69eab959b9e47a6276ba7f363b6857687c410adcaf56135586b7eaVirustotal results 37.14% RiseProStealer
2024-04-14n/aexe 3e871c5abbc23742ecdf02424e8f55c67f6177a3a5b4544efd4d5fb2ba6b685aVirustotal results 34.92% RiseProStealer
2024-04-14n/aexe 8df3c4ce36b4d6cbad8d8da8b7ea5d473418397e1172ff14047ce4ee3c84c52cVirustotal results 39.13% RiseProStealer
2024-04-14n/aexe 205524412abf2bbaeb37cdb73e6f70e59e74fdaa45f2eb68653a78c0f1098fb5Virustotal results 35.71%RiseProStealer
2024-04-14n/aexe 205524412abf2bbaeb37cdb73e6f70e59e74fdaa45f2eb68653a78c0f1098fb5Virustotal results 35.71%RiseProStealer
2024-04-14n/aexe baf757d4426a783292c3d0e78885969d6dde83fbe6334865c888895a6d10023bVirustotal results 34.29%RiseProStealer
2024-04-13n/aexe f5080001169312dcc8dfa20d2dc172f5bd8cbd336036836927c90b4f30ae9e50Virustotal results 34.29%RiseProStealer
2024-04-13n/aexe 460495642e512ae22beb03bcc7aed158601e12179340755a4711693698fd461bVirustotal results 35.71%RiseProStealer
2024-04-13n/aexe d74a5f1212ec46a6dda8e0330cdd3f6b9e642b33e6280c715eb2ca92b02b0ca6Virustotal results 39.13%RiseProStealer